JoomlaFeed
aggregated community news.
on Thursday, 02 July 2009
PDF Print E-mail

By default the prefix for your Joomla database is jos_. Hackers will utilize this knowledge and attempt a variety of attacks using this little default tidbit.

injection2

Quick security tip for your Joomla site

Have you ever heard of people talking about a SQL Injection?  Rest assured it has nothing to do with your doctor, and more to do with you and your site getting hacked.

“Crap, now I am scared, what do I do?”

Don’t get too upset, there is a solution.  When you are setting up a new Joomla site you can select whatever prefix you want.   jos_ is set as the default, but you can change it to anything you like within reason.  (Try to stick with 3 digits and the underscore.)

You are in control…or should be!

If you are still using Fantastico or letting your webhost do a Joomla setup for you, it’s time to put on your big boy/girl pants and do a standard Joomla install once in a while.

You will have more control over your Joomla install, have a better understanding of Joomla, and won’t sound like a tool when somebody asks you a simple question about your install.  You can also change your database prefix in the second step….the reason I brought this topic up in the first place.

Already have an existing install and just cannot start over?

That’s no problem, there are many different ways to change your prefix. If you are familiar with your database already and how to admin it, I won’t get into details.  There are lot’s of results in Google on how to do this.

If databases and words are scary, then there is always the option of using a Joomla component for this change.  There are a few components out there that can do this for you from your Joomla back-end, including this one from Dave Thomas.  I haven’t used them personally, but they seem pretty straight forward.

Make a note!

The only other big issue to consider when changing your default prefix is to remember you did it.  Some poorly written components might assume you are using jos_.  Some bridges and/or integrations with other scripts might assume you used jos_.

Just make a mental note in your head or put it on your clients spec sheet, and don’t forget you changed from the default, and you will be good to go.

Happy Joomla’ing.  :)

Related posts:

  1. Website hosting - what you need to know At some point in our lives we all hope our websites get popular enough to generate some traffic and
  2. SimpleContact | Contact module for Joomla gets a make-over The first version we did of this Joomla contact module was super simple to say the least. All the fi
  3. Build your Joomla site locally and faster. Develop your Joomla site on your own network.  You will be amazed how much faster you will get thin

Read original post at source site... http://www.prothemer.com/blog/2009/07/02/change-your-joomla-database-prefix/

 

Subscribe

Sign up to our email newsletter to stay in touch - we send it out monthly and never spam.

Friends and collaborators

RSS: templates